GBDE not protecting the user

Michael W. Lucas mwlucas at michaelwlucas.com
Sat Oct 11 07:44:23 UTC 2014


On Sat, Oct 11, 2014 at 11:30:08AM +0800, Erich Dollansky wrote:
> Hi,
> 
> On Fri, 10 Oct 2014 17:58:42 -0400
> "Michael W. Lucas" <mwlucas at michaelwlucas.com> wrote:
> 
> > [Tried questions@, no answer, and the code contains things I just
> > cannot trigger.]
> > 
> just try geli. It works for me. What I like most is that you can have
> key and password on external media. No external media - no decyphering.

GELI does not verify key destruction when the correct passphrase is
used. There are use cases where this is very important--e.g., finance.

I'd really like to include GBDE in my FreeBSD storage book, but it
seems that it doesn't actually work.

==ml

-- 
Michael W. Lucas  -  mwlucas at michaelwlucas.com, Twitter @mwlauthor 
http://www.MichaelWLucas.com/, http://blather.MichaelWLucas.com/


More information about the freebsd-hackers mailing list